mirror of
https://github.com/torvalds/linux.git
synced 2026-06-07 14:04:54 +02:00
netfilter: nf_tables: really skip inactive sets when allocating name
commit271c5ca826upstream. While looping to build the bitmap of used anonymous set names, check the current set in the iteration, instead of the one that is being created. Fixes:37a9cc5255("netfilter: nf_tables: add generation mask to sets") Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org> Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
This commit is contained in:
parent
330f0a552b
commit
8d2fe4b9ed
|
|
@ -3702,7 +3702,7 @@ static int nf_tables_set_alloc_name(struct nft_ctx *ctx, struct nft_set *set,
|
||||||
list_for_each_entry(i, &ctx->table->sets, list) {
|
list_for_each_entry(i, &ctx->table->sets, list) {
|
||||||
int tmp;
|
int tmp;
|
||||||
|
|
||||||
if (!nft_is_active_next(ctx->net, set))
|
if (!nft_is_active_next(ctx->net, i))
|
||||||
continue;
|
continue;
|
||||||
if (!sscanf(i->name, name, &tmp))
|
if (!sscanf(i->name, name, &tmp))
|
||||||
continue;
|
continue;
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue
Block a user